Security News

Sites using session replay scripts leak sensitive user data
2017-11-20 21:36

When we enter sensitive information – our names, passwords, payment card information, medical information, what have you – into websites, we do it with the expectation that it will be kept...

Kaspersky Blames NSA Analyst For U.S. Intel Leak
2017-11-17 14:18

Anti-virus Vendor Says It Collected, Then Deleted Four Classified DocumentsKaspersky Lab says it "inadvertently" scooped up classified U.S. documents and code from an NSA analyst's home computer,...

Tor Browser flaw leaks users’ real IP address
2017-11-06 16:53

The Tor Project has issued an emergency security bugfix release of Tor Browser, to prevent user IP address leakage due to a still unpatched Firefox bug. The bug is present only in the macOS and...

Warning: Critical Tor Browser Vulnerability Leaks Users’ Real IP Address—Update Now
2017-11-04 01:16

If you follow us on Twitter, you must be aware that since yesterday we have been warning Mac and Linux users of the Tor anonymity browser about a critical vulnerability that could leak their real...

Offshore Legal Firm Hacked, Braces for Media Leaks
2017-10-25 01:38

Financial details of some of the world's richest people are set to be published after a Bermuda-based offshore firm suffered a data breach, a British newspaper reported Wednesday. read more

Emergency Apple Patch Fixes High Sierra Password Hint Leak
2017-10-06 09:42

Apple rushed out an emergency patch that fixed an bug in High Sierra that revealed APFS volume passwords via the password hint feature.

macOS High Sierra Leaks APFS Volume Passwords via Hint
2017-10-05 15:13

A developer from Brazil noticed that the recently launched macOS High Sierra 10.13 operating system leaks the passwords for encrypted Apple File System (APFS) volumes via the password hint. read more

Chris Vickery on Amazon S3 Data Leaks
2017-09-25 15:15

Mike Mimoso talks to Chris Vickery of Upguard of the recent rash of Amazon S3 data leaks.

Adobe Private PGP Key Leak a Blunder, But It Could Have Been Worse
2017-09-25 13:30

Adobe suffered at a minimum a PR black eye on Friday when one of its private PGP keys was inadvertently published to its Product Incident Security Response Team (PSIRT) blog.

Optionsbleed bug makes Apache HTTP Server leak data from memory
2017-09-20 20:16

On Monday, security researcher Hanno Böck detailed a memory-leaking vulnerability in Apache HTTP Server that’s similar to the infamous OpenSSL Heartbleed bug uncovered in April 2014. Unlike...